Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
451 results
gha-lab-2f775f277c preview

gha-lab-2f775f277c

GitHubpvharmo2/gha-lab-2f775f277c

Authorized lab reproduction of CVE-2025-47928 (spotipy-dev/spotipy pull_request_target secrets exfiltration) — snapshot at vulnerable commit 4f5759d

cloud-securitycurated-resourcesdevsecops+2
21h 10m ago
chef-ssh-hardening preview

chef-ssh-hardening

GitHubdev-sec/chef-ssh-hardening

This chef cookbook provides secure ssh-client and ssh-server configurations.

authenticationcloud-infrastructure-securityconfiguration-auditing+2
1689 days ago
puppet-ssh-hardening preview

puppet-ssh-hardening

GitHubdev-sec/puppet-ssh-hardening

This puppet module provides secure ssh-client and ssh-server configurations.

authenticationcloud-infrastructure-securityconfiguration-auditing+2
602 years ago
teamcity-cve-2026-63077-remediation preview

teamcity-cve-2026-63077-remediation

GitHubbakos-sandor-nx/teamcity-cve-2026-63077-remediation

JetBrains TeamCity On-Premises CVE-2026-63077 Emergency Hardening & Patch Runbook Package

cloud-infrastructure-securityconfiguration-auditingdevsecops+6
1 month ago
tomcat85-check preview

tomcat85-check

GitHubxiaoqimikko/tomcat85-check

CVE-2025-55752 CVE-2025-55754 CVE-2025-48988 CVE-2025-52520 CVE-2025-53506 CVE-2025-61795 CVE-2025-66614:Tomcat 8.5 已 EOL,终版 8.5.100。Apache 逐条声明「8.5…

cloud-infrastructure-securityconfiguration-auditingdevsecops+3
3 days ago
gha-lab-40e23db109 preview

gha-lab-40e23db109

GitHubpvharmo2/gha-lab-40e23db109

Security-research lab: controlled reproduction of CVE-2024-4254 (GHSA-fc78-c36r-cc59) — deploy-website.yml fork checkout/code execution in…

cloud-securitydevsecopseducation+2
2 days ago
copyfail-fix preview

copyfail-fix

GitHubpaulorlima9/copyfail-fix

Quick mitigation and patch script for CVE-2026-31431 (Copy Fail) on Ubuntu/Debian VPS

cloud-infrastructure-securityconfiguration-auditingdevsecops+2
3 months ago
zttp preview

zttp

GitLabnihal799/zttp

Zero-trust SSH bastion proxy with Vault-backed key management, RBAC policy enforcement, full session recording, and admin TUI for auditable access to…

authentication-authorizationcloud-infrastructure-securitydefensive-tools+3
2 months ago
pyrite preview

pyrite

GitLabrenich/pyrite

Hardware-bound & Cloud-gated binary execution, cryptographic provenance, and anti-tamper envelope sealing for Crystal.

binary-analysiscloud-securitycryptography+3
25 days ago
cved preview

cved

GitHubgit-rep-src/cved

A tool to manage vulnerable docker containers

cloud-infrastructure-securityconfiguration-auditingcontainer-security+2
5 years ago
copy-fail-CVE-2026-31431-mitigation-ansible-playbook preview

copy-fail-CVE-2026-31431-mitigation-ansible-playbook

GitHubmlazzarotto/copy-fail-cve-2026-31431-mitigation-ansible-playbook

An Ansible Playbook to mitigate the vulnerability CVE-2026-31431 on RHEL-based and Debian-based OSes.

cloud-infrastructure-securityconfiguration-auditingdevsecops+2
4 months ago
copyfail-mitigation preview

copyfail-mitigation

GitHubmahradbt/copyfail-mitigation

Ansible playbooks to audit and mitigate CVE-2026-31431 ("Copy Fail"), a local privilege escalation vulnerability in the Linux kernel's `algif_aead`…

cloud-infrastructure-securityconfiguration-auditingdevsecops+2
24 months ago
CVE-2026-31431-mitigation-suite preview

CVE-2026-31431-mitigation-suite

GitHubmahdi13830510/cve-2026-31431-mitigation-suite

Kernel-runtime defense framework for AF_ALG vulnerabilities, featuring eBPF socket tracing, Ansible hardening, and a crypto auditor for drift…

anomaly-detectioncloud-infrastructure-securityconfiguration-auditing+4
44 months ago
cve-2026-41940-scanner preview

cve-2026-41940-scanner

GitHublinko-iheb/cve-2026-41940-scanner

Passive, read-only vulnerability scanner for detecting CVE-2026-41940 in cPanel & WHM. Performs version-based fingerprinting, generates…

cloud-infrastructure-securityconfiguration-auditingdefensive-tools+3
14 months ago
ansible-role-cve-2026-31431 preview

ansible-role-cve-2026-31431

GitHubjoltcan/ansible-role-cve-2026-31431

Ansible role that applies and verifies the modprobe.d mitigation for CVE-2026-31431 by disabling the algif_aead kernel module, with safety checks for…

cloud-infrastructure-securityconfiguration-auditingdevsecops+1
4 months ago
cve-2026-31431-ansible preview

cve-2026-31431-ansible

GitHubaestechno/cve-2026-31431-ansible

Ansible playbook to detect and apply kernel cmdline mitigation for CVE-2026-31431 (Copy Fail) across Debian/Ubuntu/RHEL fleets, with read-only…

cloud-infrastructure-securityconfiguration-auditingdevsecops+1
34 months ago
cve-2026-0300-audit preview

cve-2026-0300-audit

GitHubtailwindrg/cve-2026-0300-audit

Read-only audit tooling for CVE-2026-0300 (PAN-OS User-ID Authentication Portal exposure)

cloud-infrastructure-securityconfiguration-auditingdevsecops+3
4 months ago
cPanel-Fix preview

cPanel-Fix

GitHubmrarianet/cpanel-fix

One security-remediation.sh for CVE-2026-41940 (cPanel), CVE-2026-31431 (kernel "Copy Fail"), CSF, optional domain/proxy cleanup, and optional…

cloud-infrastructure-securityconfiguration-auditingdevsecops+3
14 months ago
Previous12…26Next